Product
medium
advisory
Arbitrary Terminal Manipulation via Git Sideband Payloads
1 TTP 1 CVECVE-2024-52005 is a security vulnerability in Git where unfiltered sideband payloads are processed by the terminal, potentially leading to unauthorized terminal manipulation or command execution during repository interaction.
Git
1t
1c
critical
advisory
Denying the Worm: Detecting SANDWORM_MODE and AI Toolchain Supply Chain Attacks
3 rules 14 TTPs 8 IOCsThe SANDWORM_MODE campaign is a multi-stage npm supply chain worm that targets AI-augmented development workflows by exploiting runtime behaviors of AI coding assistants and CI/CD pipelines, leading to credential theft, supply chain poisoning, and persistence through obfuscated loaders, credential harvesting, and malicious Git hooks.
npm +16
supply-chain-attack
git
ai-toolchain
development-workflow
code-injection
credential-theft
persistence
evasion
3r
14t
8i
updated